-
Type:
Bug
-
Resolution: Fixed
-
Priority:
High
-
Affects Version/s: None
-
Component/s: Security
We have identified and fixed a code injection vulnerability in Bamboo caused by an underlying vulnerability in the third-party Webwork 2 framework.
All versions of Bamboo from 3.0 up are affected.
This issue is reported in our security advisory on this page:
http://confluence.atlassian.com/x/MgFTE
This vulnerability is a variant of a recently disclosed Struts2 vulnerability.